Summaries
Short AI and tech summaries with source links, signal scores, and why each update matters for builders, founders, and Malaysian tech workers.
Showing 1-1 of 1 results
| Date | Provider | Score | Summary |
|---|---|---|---|
| 19 Aug 2026, 7:34 PM | The Hacker News | 4.0 | Hackers Compromised 14,500+ Dahua Devices Using Credential Attacks, Auth Bypasses, and P2P
Researchers at Hunt.io disclosed 'Operation CameraSwarm,' a campaign that compromised over 14,530 Dahua devices between June 17 and July 22, 2026, using credential attacks (12,324 IPs), two 2021 auth-bypass CVEs (1,923 cameras), and a P2P relay path (283 cameras). The campaign was reconstructed from a 407 MB exposed working directory with 2,616 files, and confirmed compromises were concentrated in Ukraine and Russia. Why: If you deploy or manage Dahua cameras or similar IoT devices, check firmware against the vendor's download site and disable P2P where it is not required—both CVE-2021-33044 and CVE-2021-33045 remain unpatched in many deployments despite fixes being available, and the P2P relay path can reach devices behind NAT without prior authentication. |